|
312601
|
5.0 |
MEDIUM
|
mirabilis
|
icq
|
The guestbook CGI program in ICQ Web Front service for ICQ 2000a, 99b, and others allows remote attackers to cause a denial of service via a URL with a long name parameter.
|
NVD-CWE-Other
|
CVE-2000-0564
|
2008-09-11 04:05 |
2000-05-29 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312602
|
5.0 |
MEDIUM
|
openbsd washington_university
|
ftpd wu-ftpd
|
FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called by set_proc_title), w…
|
NVD-CWE-Other
|
CVE-2000-0574
|
2008-09-11 04:05 |
2000-07-7 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312603
|
5.0 |
MEDIUM
|
oracle
|
web_listener
|
Oracle Web Listener for AIX versions 4.0.7.0.0 and 4.0.8.1.0 allows remote attackers to cause a denial of service via a malformed URL.
|
NVD-CWE-Other
|
CVE-2000-0576
|
2008-09-11 04:05 |
2000-07-5 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312604
|
3.7 |
LOW
|
sgi
|
mipspro_compilers
|
SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into these files as they are being c…
|
NVD-CWE-Other
|
CVE-2000-0578
|
2008-09-11 04:05 |
2000-06-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312605
|
3.7 |
LOW
|
sgi
|
irix
|
IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it is being edited.
|
NVD-CWE-Other
|
CVE-2000-0579
|
2008-09-11 04:05 |
2000-06-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312606
|
10.0 |
HIGH
|
dalnet
|
ircd
|
Buffer overflow in Dalnet IRC server 4.6.5 allows remote attackers to cause a denial of service or execute arbitrary commands via the SUMMON command.
|
NVD-CWE-Other
|
CVE-2000-0586
|
2008-09-11 04:05 |
2000-06-29 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312607
|
5.0 |
MEDIUM
|
novell
|
bordermanager
|
Novell BorderManager 3.0 and 3.5 allows remote attackers to bypass URL filtering by encoding characters in the requested URL.
|
NVD-CWE-Other
|
CVE-2000-0591
|
2008-09-11 04:05 |
2000-07-5 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312608
|
4.6 |
MEDIUM
|
freebsd
|
freebsd
|
libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in anot…
|
NVD-CWE-Other
|
CVE-2000-0595
|
2008-09-11 04:05 |
2000-07-5 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312609
|
5.0 |
MEDIUM
|
fortech
|
proxy\+
|
Fortech Proxy+ allows remote attackers to bypass access restrictions for to the administration service by redirecting their connections through the telnet proxy.
|
NVD-CWE-Other
|
CVE-2000-0598
|
2008-09-11 04:05 |
2000-06-26 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312610
|
7.5 |
HIGH
|
imesh.com
|
imesh
|
Buffer overflow in iMesh 1.02 allows remote attackers to execute arbitrary commands via a long string to the iMesh port.
|
NVD-CWE-Other
|
CVE-2000-0599
|
2008-09-11 04:05 |
2000-06-29 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312611
|
2.1 |
LOW
|
blackboard
|
courseinfo
|
Blackboard CourseInfo 4.0 stores the local and SQL administrator user names and passwords in cleartext in a registry key whose access control allows users to access the passwords.
|
NVD-CWE-Other
|
CVE-2000-0605
|
2008-09-11 04:05 |
2000-07-10 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312612
|
10.0 |
HIGH
|
suse
|
suse_linux
|
Tnef program in Linux systems allows remote attackers to overwrite arbitrary files via TNEF encoded compressed attachments which specify absolute path names for the decompressed output.
|
NVD-CWE-Other
|
CVE-2000-0614
|
2008-09-11 04:05 |
2000-07-10 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312613
|
4.6 |
MEDIUM
|
hp
|
mpe_ix
|
Vulnerability in HP TurboIMAGE DBUTIL allows local users to gain additional privileges via DBUTIL.PUB.SYS.
|
NVD-CWE-Other
|
CVE-2000-0616
|
2008-09-11 04:05 |
2000-06-26 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312614
|
4.6 |
MEDIUM
|
stanley_t._shebs
|
xconq
|
Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long USER environmental variable.
|
NVD-CWE-Other
|
CVE-2000-0617
|
2008-09-11 04:05 |
2000-06-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312615
|
4.6 |
MEDIUM
|
stanley_t._shebs
|
xconq
|
Buffer overflow in xconq and cconq game programs on Red Hat Linux allows local users to gain additional privileges via long DISPLAY environmental variable.
|
NVD-CWE-Other
|
CVE-2000-0618
|
2008-09-11 04:05 |
2000-06-22 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312616
|
10.0 |
HIGH
|
oreilly
|
website_professional
|
Buffer overflow in O'Reilly WebSite Professional web server 2.4 and earlier allows remote attackers to execute arbitrary commands via a long GET request or Referrer header.
|
NVD-CWE-Other
|
CVE-2000-0623
|
2008-09-11 04:05 |
2000-07-17 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312617
|
4.6 |
MEDIUM
|
netzero
|
zeroport
|
NetZero 3.0 and earlier uses weak encryption for storing a user's login information, which allows a local user to decrypt the password.
|
NVD-CWE-Other
|
CVE-2000-0625
|
2008-09-11 04:05 |
2000-07-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312618
|
5.0 |
MEDIUM
|
computer_software_manufaktur
|
alibaba
|
Buffer overflow in Alibaba web server allows remote attackers to cause a denial of service via a long GET request.
|
NVD-CWE-Other
|
CVE-2000-0626
|
2008-09-11 04:05 |
2000-07-18 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312619
|
7.5 |
HIGH
|
sun
|
java_system_web_server
|
The default configuration of the Sun Java web server 2.0 and earlier allows remote attackers to execute arbitrary commands by uploading Java code to the server via board.html, then directly calling t…
|
NVD-CWE-Other
|
CVE-2000-0629
|
2008-09-11 04:05 |
2000-07-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312620
|
6.4 |
MEDIUM
|
texas_imperial_software
|
wftpd
|
WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by using the RESTART (REST) command and writing beyond the end of a file, or writing to a file that does not exist, via c…
|
NVD-CWE-Other
|
CVE-2000-0645
|
2008-09-11 04:05 |
2000-07-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312621
|
5.0 |
MEDIUM
|
texas_imperial_software
|
wftpd
|
WFTPD and WFTPD Pro 2.41 allows remote attackers to obtain the real pathname for a file by executing a STATUS (STAT) command while the file is being transferred.
|
NVD-CWE-Other
|
CVE-2000-0646
|
2008-09-11 04:05 |
2000-07-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312622
|
5.0 |
MEDIUM
|
texas_imperial_software
|
wftpd
|
WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server.
|
NVD-CWE-Other
|
CVE-2000-0647
|
2008-09-11 04:05 |
2000-07-21 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312623
|
5.0 |
MEDIUM
|
mozilla netscape
|
mozilla communicator
|
Netscape Communicator 4.73 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a JPEG image containing a comment with an illegal field length of 1.
|
NVD-CWE-Other
|
CVE-2000-0655
|
2008-09-11 04:05 |
2000-07-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312624
|
5.0 |
MEDIUM
|
analogx
|
proxy
|
Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the FTP protocol.
|
NVD-CWE-Other
|
CVE-2000-0656
|
2008-09-11 04:05 |
2000-07-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312625
|
5.0 |
MEDIUM
|
analogx
|
proxy
|
Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long USER command in the POP3 protocol.
|
NVD-CWE-Other
|
CVE-2000-0658
|
2008-09-11 04:05 |
2000-07-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312626
|
5.0 |
MEDIUM
|
analogx
|
proxy
|
Buffer overflow in AnalogX proxy server 4.04 and earlier allows remote attackers to cause a denial of service via a long user ID in a SOCKS4 CONNECT request.
|
NVD-CWE-Other
|
CVE-2000-0659
|
2008-09-11 04:05 |
2000-07-25 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312627
|
3.6 |
LOW
|
conectiva
|
linux
|
Vulnerability in gpm in Caldera Linux allows local users to delete arbitrary files or conduct a denial of service.
|
NVD-CWE-Other
|
CVE-2000-0667
|
2008-09-11 04:05 |
2000-07-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312628
|
5.0 |
MEDIUM
|
netscape
|
communicator
|
Netscape Communicator and Navigator 4.04 through 4.74 allows remote attackers to read arbitrary files by using a Java applet to open a connection to a URL using the "file", "http", "https", and "ftp"…
|
NVD-CWE-Other
|
CVE-2000-0676
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312629
|
5.0 |
MEDIUM
|
pgp
|
pgp
|
PGP 5.5.x through 6.5.3 does not properly check if an Additional Decryption Key (ADK) is stored in the signed portion of a public certificate, which allows an attacker who can modify a victim's publi…
|
NVD-CWE-Other
|
CVE-2000-0678
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312630
|
10.0 |
HIGH
|
bea
|
weblogic_server
|
BEA WebLogic 5.1.x does not properly restrict access to the JSPServlet, which could allow remote attackers to compile and execute Java JSP code by directly invoking the servlet on any source file.
|
NVD-CWE-Other
|
CVE-2000-0684
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312631
|
10.0 |
HIGH
|
bea
|
weblogic_server
|
BEA WebLogic 5.1.x does not properly restrict access to the PageCompileServlet, which could allow remote attackers to compile and execute Java JHTML code by directly invoking the servlet on any sourc…
|
NVD-CWE-Other
|
CVE-2000-0685
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312632
|
10.0 |
HIGH
|
cgi_script_center
|
auction_weaver
|
Auction Weaver CGI script 1.02 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the fromfile parameter.
|
NVD-CWE-Other
|
CVE-2000-0690
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312633
|
7.2 |
HIGH
|
larry_wall
|
perl
|
suidperl (aka sperl) does not properly cleanse the escape sequence "~!" before calling /bin/mail to send an error report, which allows local users to gain privileges by setting the "interactive" envi…
|
NVD-CWE-Other
|
CVE-2000-0703
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312634
|
5.0 |
MEDIUM
|
luca_deri
|
ntop
|
ntop running in web mode allows remote attackers to read arbitrary files via a .. (dot dot) attack.
|
NVD-CWE-Other
|
CVE-2000-0705
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312635
|
10.0 |
HIGH
|
luca_deri
|
ntop
|
Buffer overflows in ntop running in web mode allows remote attackers to execute arbitrary commands.
|
NVD-CWE-Other
|
CVE-2000-0706
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312636
|
7.2 |
HIGH
|
university_of_massachusetts
|
scheme
|
umb-scheme 3.2-11 for Red Hat Linux is installed with world-writeable files.
|
NVD-CWE-Other
|
CVE-2000-0714
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312637
|
2.1 |
LOW
|
kirk_bauer conectiva
|
diskcheck linux
|
DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local users to create or overwrite arbitrary files via a symlink attack on a temporary file.
|
CWE-59
リンク解釈の問題
|
CVE-2000-0715
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312638
|
7.2 |
HIGH
|
zope
|
zope
|
Zope before 2.2.1 does not properly restrict access to the getRoles method, which allows users who can edit DTML to add or modify roles by modifying the roles list that is included in a request.
|
NVD-CWE-Other
|
CVE-2000-0725
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312639
|
7.5 |
HIGH
|
netbsd openbsd redhat
|
netbsd openbsd linux
|
Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.
|
NVD-CWE-Other
|
CVE-2000-0750
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312640
|
7.5 |
HIGH
|
checkpoint
|
firewall-1
|
Checkpoint Firewall-1 with the RSH/REXEC setting enabled allows remote attackers to bypass access restrictions and connect to a RSH/REXEC client via malformed connection requests.
|
NVD-CWE-Other
|
CVE-2000-0779
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312641
|
7.5 |
HIGH
|
xchat
|
xchat
|
IRC Xchat client versions 1.4.2 and earlier allows remote attackers to execute arbitrary commands by encoding shell metacharacters into a URL which XChat uses to launch a web browser.
|
NVD-CWE-Other
|
CVE-2000-0787
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312642
|
10.0 |
HIGH
|
suse
|
suse_linux
|
String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.
|
NVD-CWE-Other
|
CVE-2000-0800
|
2008-09-11 04:05 |
2000-10-20 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312643
|
6.4 |
MEDIUM
|
sgi
|
irix
|
The default installation of IRIX Performance Copilot allows remote attackers to access sensitive system information via the pmcd daemon.
|
NVD-CWE-Other
|
CVE-2000-0283
|
2008-09-11 04:04 |
2000-04-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312644
|
7.5 |
HIGH
|
university_of_washington
|
imap
|
Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands.
|
NVD-CWE-Other
|
CVE-2000-0284
|
2008-09-11 04:04 |
2000-04-16 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312645
|
7.2 |
HIGH
|
xfree86_project
|
x11r6
|
Buffer overflow in XFree86 3.3.x allows local users to execute arbitrary commands via a long -xkbmap parameter.
|
NVD-CWE-Other
|
CVE-2000-0285
|
2008-09-11 04:04 |
2000-04-16 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312646
|
2.1 |
LOW
|
redhat
|
linux
|
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
|
NVD-CWE-Other
|
CVE-2000-0286
|
2008-09-11 04:04 |
2000-04-16 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312647
|
10.0 |
HIGH
|
cnc
|
technology_bizdb
|
The BizDB CGI script bizdb-search.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the dbname parameter.
|
NVD-CWE-Other
|
CVE-2000-0287
|
2008-09-11 04:04 |
2000-04-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312648
|
5.0 |
MEDIUM
|
-
|
-
|
Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form variable.
|
NVD-CWE-Other
|
CVE-2000-0288
|
2008-09-11 04:04 |
2000-04-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312649
|
5.0 |
MEDIUM
|
debian linux redhat
|
debian_linux linux_kernel linux
|
IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established…
|
NVD-CWE-Other
|
CVE-2000-0289
|
2008-09-11 04:04 |
2000-03-27 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312650
|
4.6 |
MEDIUM
|
sun
|
staroffice
|
Buffer overflow in Star Office 5.1 allows attackers to cause a denial of service by embedding a long URL within a document.
|
NVD-CWE-Other
|
CVE-2000-0291
|
2008-09-11 04:04 |
2000-04-16 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
|